3
docx
keyboard_arrow_up
School
Moi University *
*We aren’t endorsed by this school
Course
ICT200
Subject
Information Systems
Date
Nov 24, 2024
Type
docx
Pages
3
Uploaded by grantjoshua
Task 1.3 – Develop cyber security policies and procedures
a). Policy and procedure for awareness relating to USB Flash Drives
Item
Summary
Policy Title
USB Flash Drive Usage Policy
Policy Statement
Gelos Enterprises recognizes the importance of maintaining a secure and
protected computing environment. This policy outlines the guidelines and
procedures for the safe and responsible use of USB flash drives within our
organization. The use of USB flash must be done in a manner that
safeguards sensitive information, prevents the introduction of malware,
and aligns with Gelos Enterprises' commitment to cybersecurity.
Procedure Scope
This policy and procedure apply to all Gelos Enterprises, whether working
from the company’s premises or remotely. The policy and procedure also
apply to all other stakeholders of the company, including contractors and
third-party personnel, who might have access to Gelos Enterprises'
computer systems, networks, and data. It must always be followed when
using USB flash drives in the workplace or when handling Gelos
Enterprises' data on external storage devices.
Procedure
All personal USB flash drives are banned from use on the Gelos
Enterprises computers or workers' personal computers that remotely
connect to the Gelos Enterprises network.
Only USB flash drives provided by Gelos Enterprises can be used on
the company’s information systems. All USB flash drives should be
sourced from the ICT Service Desk. The flash drives should be
encrypted and password-protected.
USB flash drive usage should be kept at an absolute minimum for
unavoidable business needs. The usage should be approved via email
by an employee’s manager and should only be used on Gelos
Enterprises computers.
Files kept on USB flash drives should be kept at an absolute minimum.
All internal and external sharing should be done using the MS
OneDrive.
USB flash drives should not be shared with unauthorized persons.
Additionally, authorized persons should not leave USB flash drives
unattended.
The ICT Service Desk personnel must keep a register of all USB flash
drives.
Related Policies
and Procedures
Employees should also refer to the following related policies and
procedures when viewing this policy:
Personal Devices Policy and Procedure
Information and Systems Security Policy
b). Email to ICT manager requesting feedback on the new USB Flash Drive Usage Policy
Email Field
Details
From
(Name)
To
ICT Manager
CC
Supervisor
Subject
Request for feedback on the new USB Flash Drive Usage Policy
Body
Following a recent cybersecurity incident involving a USB flash drive, the
company is developing a USB Flash Drive Usage Policy to maintain a
secure and protected computing environment. The policy outlines the
guidelines and procedures for the safe and responsible use of USB flash
drives within our organization. Please find the attached USB Flash Drive
Usage Policy and offer your thoughts and feedback about it. Thanks in
advance.
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
- Access to all documents
- Unlimited textbook solutions
- 24/7 expert homework help